Senior Security Architect

Booking Booking · Hospitality · Amsterdam, Netherlands

Senior Security Architect at Booking.com to lead the security architecture domain within Tech Standards, translating enterprise architecture direction into practical principles and guidance for engineering teams. The role focuses on enabling engineers to build secure systems without slowing delivery, shaping security non-functional requirements, and embedding security into the SDLC.

What you'd actually do

  1. Own the security architecture domain within Tech Standards, aligned with the Director of Architecture's enterprise architecture direction.
  2. Translate Booking.com's Tech Guiding Principles into practical security architecture guidance, patterns, and defaults that reduce friction for engineering teams.
  3. Work with the Security organisation to shape security non-functional requirements that are clear, practical, and usable by engineering teams.
  4. Turn security requirements, policies, and audit findings into architecture guidance and reference patterns that teams can apply without unnecessary manual gates.
  5. Partner with Business Unit architects, engineering leaders, Security, and SRE to make security guidance relevant to real delivery needs.

Skills

Required

  • enterprise security domains
  • identity and access management
  • data protection
  • network security
  • application security
  • infrastructure security
  • cloud security
  • zero-trust architecture
  • security regulations
  • risk management
  • software delivery
  • developer workflows
  • SDLC

Nice to have

  • CISSP-ISSAP
  • GDSA
  • CCZT
  • CISM
  • cloud security certifications

What the JD emphasized

  • security architecture at enterprise scale
  • security non-functional requirements
  • zero-trust principles
  • security regulations